Sophos

4 May 2007 22:58 GMT

You just did a BOZO thing!!!

While tracking a URL seen in spam, SophosLabs came across an executable that looked like a standard piece of malware, your common-or-garden downloader. Except the payload of this executable was just a regular GIF image and, once downloaded, the executable didn’t attempt to do anything with it. Instead it popped up the following message:

bozoThing

Whatever malware may or may not have originally been at this address, this executable is there now.

Richard Cohen, SophosLabs Canada